 
        
            Weak passwords, Weaker MFA Protocols, and One Absent-Minded Professor
Multi-factor authentication (MFA) is often touted as a silver-bullet for preventing breaches, but it is only as good as the people using it. Without other compensating controls in place, a malicious actor could be one push notification away from your internal network. This is the story of how I went external-to-internal on an external network…



 
                         
                         
                         
                         
                         
                         
         
         
         
         
         
         
        ![[Guest Diary] Comparing Honeypot Passwords with HIBP](https://informernow.online/wp-content/uploads/2025/09/2025-10-01_figure1-400x250.png) 
        